CVE-2023-54001

UnknownEPSS 0.18%

Last modified

CVE-2023-54001 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: staging: r8712: Fix memory leak in _r8712_init_xmit_priv() In the above mentioned routine, memory is allocated in several places. If the first succeeds and a later one fails, the routine will leak memory. This patch fixes commit 2865d42c78a9 ("staging: r8712u: Add the new driver to the mainline kernel"). A potential memory leak in r8712_xmit_resource_alloc() is also addressed.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: staging: r8712: Fix memory leak in _r8712_init_xmit_priv() In the above mentioned routine, memory is allocated in several places. If the first succeeds and a later one fails, the routine will leak memory. This patch fixes commit 2865d42c78a9 ("staging: r8712u: Add the new driver to the mainline kernel"). A potential memory leak in r8712_xmit_resource_alloc() is also addressed.

Metrics

EPSS Probability
0.18%

7.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 2865d42c78a9121caad52cb02d1fbb7f5cdbc4ef, < fc511ae405f7ba29fbcb0246061ec15c272386e1; >= 2865d42c78a9121caad52cb02d1fbb7f5cdbc4ef, < acacdbe0f740ca8c5d5da73d50870903a3ded677; >= 2865d42c78a9121caad52cb02d1fbb7f5cdbc4ef, < 41e05572e871b10dbdc168c76175c97982daf4a4; >= 2865d42c78a9121caad52cb02d1fbb7f5cdbc4ef, < 874555472c736813ba1f4baf0b4c09c8e26d81ea; >= 2865d42c78a9121caad52cb02d1fbb7f5cdbc4ef, < ac83631230f77dda94154ed0ebfd368fc81c70a3
LinuxLinux2.6.37

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2023-54001?
In the Linux kernel, the following vulnerability has been resolved: staging: r8712: Fix memory leak in _r8712_init_xmit_priv() In the above mentioned routine, memory is allocated in several places. If the first succeeds and a later one fails, the routine will leak memory. This patch fixes commit 2865d42c78a9 ("staging: r8712u: Add the new driver to the mainline kernel"). A potential memory leak in r8712_xmit_resource_alloc() is also addressed.
How severe is CVE-2023-54001?
Severity scoring for CVE-2023-54001 is pending analysis. The EPSS model estimates a 0.18% probability of exploitation in the next 30 days.
How do I fix CVE-2023-54001?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2023

Are you affected by CVE-2023-54001?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST